SOC Analyst Tier 3
$100,000–$140,000 year
RemoteAlabama, United States or Huntsville, Alabama, United States
Job Summary
Triage, detect, and investigate potential security threats while managing higher-level cybersecurity incidents according to the full IR Lifecycle. Liaise with clients for MSSP agreements and serve as escalation points for SOC Tier 2 regarding triage, analysis, incident response, and SIEM/Detection Engineering. Deploy, tune, and maintain SIEM and Detection Engineering platforms, reviewing alerts to determine relevance and urgency. Assist with CMMC L2 and L3 compliance mandates and implement security measures for disaster recovery planning. Track emerging threats to improve security configurations and lead service improvement projects.
Required Qualifications
- Administrative skills in several operating systems, such as Windows, OS X, and Linux
- Experience with the Microsoft Security Stack
- Experience with KQL for security analysis
- Base level of knowledge of SIEM architecture and custom integration
- Understand basic principles of Information Security
- Clear Communication and presentation skills pertaining to security services
- Writing proficiency requirements with the ability to draft clear and professional internal and external correspondence
- Familiar with the concept/purpose of a SIEM
- Security + certification or SANS SEC401
- Must be able to lift 50 lbs
Desired Qualifications
- Additional Scripting languages
- Certified Ethical Hacker or better
- Blue Team Security Level 1 Certification
- Proficient in a python or PowerShell
- EC-Council Certified SOC Analyst (CSA)
- Microsoft SC 200
- MS or AZ 500
- Experience with Microsoft Sentinel preferred
Hiring someone like this?
Get your role in front of qualified candidates on Sorce.